SSGAalto / prada-protecting-against-dnn-model-stealing-attacks
Reference implementation of the PRADA model stealing defense. IEEE Euro S&P 2019.
☆33Updated 5 years ago
Related projects: ⓘ
- [ICLR'21] Dataset Inference for Ownership Resolution in Machine Learning☆30Updated last year
- ☆31Updated 2 weeks ago
- Watermarking against model extraction attacks in MLaaS. ACM MM 2021.☆32Updated 3 years ago
- Prediction Poisoning: Towards Defenses Against DNN Model Stealing Attacks (ICLR '20)☆29Updated 3 years ago
- CVPR 2021 Official repository for the Data-Free Model Extraction paper. https://arxiv.org/abs/2011.14779☆66Updated 5 months ago
- Official Implementation of ICLR 2022 paper, ``Adversarial Unlearning of Backdoors via Implicit Hypergradient''☆49Updated last year
- ☆44Updated 3 years ago
- Defending against Model Stealing via Verifying Embedded External Features☆31Updated 2 years ago
- ICCV 2021, We find most existing triggers of backdoor attacks in deep learning contain severe artifacts in the frequency domain. This Rep…☆38Updated 2 years ago
- The code is for our NeurIPS 2019 paper: https://arxiv.org/abs/1910.04749☆31Updated 4 years ago
- ☆25Updated 5 years ago
- Implementation of the paper "MAZE: Data-Free Model Stealing Attack Using Zeroth-Order Gradient Estimation".☆28Updated 2 years ago
- Example of the attack described in the paper "Towards Poisoning of Deep Learning Algorithms with Back-gradient Optimization"☆22Updated 4 years ago
- ☆10Updated 3 years ago
- Code for "On Adaptive Attacks to Adversarial Example Defenses"☆84Updated 3 years ago
- ABS: Scanning Neural Networks for Back-doors by Artificial Brain Stimulation☆47Updated 2 years ago
- Fine-Pruning: Defending Against Backdooring Attacks on Deep Neural Networks (RAID 2018)☆47Updated 5 years ago
- ☆22Updated 2 years ago
- Attacking a dog vs fish classification that uses transfer learning inceptionV3☆67Updated 6 years ago
- Code for "Label-Consistent Backdoor Attacks"☆48Updated 3 years ago
- Code for ML Doctor☆84Updated last month
- Input Purification Defense Against Trojan Attacks on Deep Neural Network Systems☆23Updated 3 years ago
- ☆73Updated 3 years ago
- This is for releasing the source code of the ACSAC paper "STRIP: A Defence Against Trojan Attacks on Deep Neural Networks"☆47Updated 4 years ago
- A minimal PyTorch implementation of Label-Consistent Backdoor Attacks☆25Updated 3 years ago
- RAB: Provable Robustness Against Backdoor Attacks☆39Updated 11 months ago
- ATTA (Efficient Adversarial Training with Transferable Adversarial Examples)☆32Updated 4 years ago
- This is the official implementation of our paper 'Untargeted Backdoor Watermark: Towards Harmless and Stealthy Dataset Copyright Protecti…☆47Updated 6 months ago
- Universal Adversarial Perturbations (UAPs) for PyTorch☆45Updated 3 years ago
- ☆48Updated 2 years ago